Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA598] DSA-598-1 yardradius


Vulnerability Assessment Details

[DSA598] DSA-598-1 yardradius

Vulnerability Assessment Summary
DSA-598-1 yardradius

Detailed Explanation for this Vulnerability Assessment

Max Vozeler noticed that yardradius, the YARD radius authentication
and accounting server, contained a stack overflow similar to the one
from radiusd which is referenced as CVE-2001-0534. This could lead to
the execution of arbitrary code as root.
For the stable distribution (woody) this problem has been fixed in
version 1.0.20-2woody1.
For the unstable distribution (sid) this problem has been fixed in
version 1.0.20-15.
We recommend that you upgrade your yardradius package immediately.


Solution : http://www.debian.org/security/2004/dsa-598
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors

Toshiba Qosmio X500 X505 Intel Motherboard m22 A000052590 DATZ1CMB8F0 REV F
$169.0
Toshiba Qosmio X500 X505 Intel Motherboard  m22 A000052590 DATZ1CMB8F0 REV F pictureAsus U31F Laptop Motherboard 60-N19MB1100-C08 REV 2.0 100%
$55.0
Asus U31F Laptop Motherboard 60-N19MB1100-C08 REV 2.0 100%  pictureToshiba Satellite C55-B OEM Intel Motherboard K000891180 LA-B303P AS IS
$5.0
Toshiba Satellite C55-B OEM Intel Motherboard K000891180 LA-B303P AS IS pictureSamsung R480 Intel Laptop Motherboard BA41-01230A BA92-06357A H2-X3-o3
$49.99
Samsung R480 Intel Laptop Motherboard BA41-01230A BA92-06357A  H2-X3-o3 picture


Discussions

No Discussions have been posted on this vulnerability.